CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.7. It affects Windows. Public exploit code or proof-of-concept references have been detected in its references. Its EPSS score suggests a 21.1% probability of exploitation in the next 30 days.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A spoofing issue in WhatsApp for Windows prior to version 2.2450.6 displayed attachments according to their MIME type but selected the file opening handler based on the attachmentâs filename extension. A maliciously crafted mismatch could have caused the recipient to inadvertently execute arbitrary code rather than view the attachment when manually opening the attachment inside WhatsApp. We have not seen evidence of exploitation in the wild.
Related CVEs
Other vulnerabilities affecting the same vendor(s)